pkg:Debian/libxstream-java
53 total CVEsCRITICAL2HIGH36MEDIUM15
✅ Check your installed version
All known vulnerabilities
- from 0, < 1.4.15-3+deb11u1
- from 0, < 1.4.11-1
- from 0, < 1.4.7-1
- from 0, < 1.4.15-3+deb11u1
- from 0, < 1.4.11.1-1+deb10u3
- from 0, < 1.4.11.1-1+deb9u4
- from 0, < 1.4.15-3+deb11u1
- from 0, < 1.4.15-3+deb11u1
- from 0, < 1.4.15-3+deb11u1
- from 0, < 1.4.15-3+deb11u1
- from 0, < 1.4.15-3+deb11u1
- from 0, < 1.4.15-3+deb11u1
- HIGH8.5CVE-2021-39150A Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local hostfrom 0, < 1.4.15-3+deb11u1
- from 0, < 1.4.15-3+deb11u1
- HIGH8.5CVE-2021-39152A Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local hostfrom 0, < 1.4.15-3+deb11u1
- from 0, < 1.4.15-3+deb11u1
- from 0, < 1.4.15-3+deb11u1
- from 0, < 1.4.15-3+deb11u2
- from 0, < 1.4.15-3+deb11u2
- from 0, < 1.4.11.1-1+deb10u4
- from 0, < 1.4.11.1-1+deb10u1
- from 0, < 1.4.9-2+deb9u1
- from 0, < 1.4.14-1
- HIGH7.5CVE-2024-47072XStream is vulnerable to a Denial of Service attack due to stack overflow from a manipulated binary input streamfrom 0, < 1.4.15-3+deb11u3
- HIGH7.5CVE-2022-40151XStream can cause a Denial of Service by injecting deeply nested objects raising a stack overflowfrom 0
- from 0, < 1.4.15-3+deb11u3
- from 0, < 1.4.15-3+deb11u3
- from 0, < 1.4.11.1-1+deb9u5
- from 0, < 1.4.11.1-1+deb9u3
- from 0, < 1.4.15-3
- from 0, < 1.4.11.1-1+deb9u2
- from 0, < 1.4.15-2
- from 0, < 1.4.2-1+deb7u2
- from 0, < 1.4.7-2+deb8u2
- from 0, < 1.4.9-2
- from 0, < 1.4.9-1
- from 0, < 1.4.7-2+deb8u1
- from 0, < 1.4.2-1+deb7u1
- MEDIUM6.8CVE-2020-26259XStream vulnerable to an Arbitrary File Deletion on the local host when unmarshallingfrom 0, < 1.4.15-1
- from 0, < 1.4.15-3+deb11u1
- from 0, < 1.4.11.1-1+deb9u1
- from 0, < 1.4.15-1
- from 0, < 1.4.11.1-1+deb10u2
- MEDIUM6.1CVE-2021-21349A Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local hostfrom 0, < 1.4.15-2
- from 0, < 1.4.15-2
- from 0, < 1.4.15-2
- from 0, < 1.4.15-2
- from 0, < 1.4.15-2
- from 0, < 1.4.15-2
- MEDIUM5.3CVE-2021-21348XStream is vulnerable to an attack using Regular Expression for a Denial of Service (ReDos)from 0, < 1.4.15-2
- from 0, < 1.4.15-2
- MEDIUM5.3CVE-2021-21343XStream is vulnerable to an Arbitrary File Deletion on the local host when unmarshalling as long as the executing process has sufficient rightsfrom 0, < 1.4.15-2
- MEDIUM5.3CVE-2021-21342A Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local hostfrom 0, < 1.4.15-2